Security News

DUHK Attack Lets Hackers Recover Encryption Key Used in VPNs & Web Sessions
2017-10-24 11:08

DUHK — Don't Use Hard-coded Keys — is a new 'non-trivial' cryptographic implementation vulnerability that could allow attackers to recover encryption keys that secure VPN connections and web...

Week in review: Vulnerable encryption, Mac backdoor, Flash Player 0day exploited in the wild
2017-10-23 02:00

Here’s an overview of some of last week’s most interesting news and articles: Vulnerability in code library allows attackers to work out private RSA keys Researchers have discovered a security...

Researchers Say Faulty Code Jeopardizes Encryption Keys
2017-10-18 12:48

Major Manufacturers Have Patched to Prevent 'ROCA' AttackResearchers say they've identified faulty cryptographic code in microchips made since 2012 by Infineon Technologies, posing risks to...

New KRACK Attack Against Wi-Fi Encryption
2017-10-16 13:39

Mathy Vanhoef has just published a devastating attack against WPA2, the 14-year-old encryption protocol used by pretty much all wi-fi systems. Its an interesting attack, where the attacker forces...

US Top Law Enforcement Calls Strong Encryption a ‘Serious Problem’
2017-10-06 07:53

U.S. Deputy Attorney General and other top cyber policy makers warn the use of strong encryption hobbles law enforcement’s ability to protect the public and solve crimes and is a serious problem.

ISO Rejects NSA Encryption Algorithms
2017-09-21 10:50

The ISO has decided not to approve two NSA-designed block encryption algorithms: Speck and Simon. It's because the NSA is not trusted to put security ahead of surveillance: A number of them voiced...

Why end-to-end encryption is about more than just privacy
2017-09-13 13:30

The question of whether regular people need end-to-end encryption will surely be debated for quite some time. But for Alan Duric, CEO and co-founder of Wire, the question can only have a positive...

A step toward practical quantum encryption over free-space networks (Help Net Security)
2017-08-25 13:00

Researchers have sent a quantum-secured message containing more than one bit of information per photon through the air above a city. The demonstration showed that it could one day be practical to...

How security pros look at encryption backdoors (Help Net Security)
2017-08-18 12:30

The majority of IT security professionals believe encryption backdoors are ineffective and potentially dangerous, with 91 percent saying cybercriminals could take advantage of government-mandated...

Alternatives to Government-Mandated Encryption Backdoors (Schneier on Security)
2017-07-25 11:52

Policy essay: "Encryption Substitutes," by Andrew Keane Woods: In this short essay, I make a few simple assumptions that bear mentioning at the outset. First, I assume that governments have good...